Microsoft released the patch ms14-068 (critical) on November 19, 2014, which fixes Windows Kerberos's vulnerability to allow elevation of privilege (cve-2014-6324), as detailed below, please be aware.
Software and systems that have been identified for successful use:
Windows Server 2003
Windows Vista
Windows Server 2008
Windows 7
Windows Server 2008 R2
Windows 8 and Windows 8.1
Windows Server and Windows Server R2
Server Core installation option
Vulnerability Description:
The Microsoft ms14-068 patch fixes Windows Kerberos's vulnerability to privilege elevation (cve-2014-6324), which could allow an attacker to elevate the normal domain user account to a domain administrator account. Attackers can take advantage of these elevated permissions to control all computers in the domain, including domain servers.
Recommended Patching Scenarios
Microsoft has released patch ms14-068, Patch download Address:
Https://technet.microsoft.com/en-us/library/security/ms14-068.aspx
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.